Dream Multimedia Dreambox devices是德国Dream Multimedia公司生产的一款基于Linux的数字电视机顶盒。BouquetEditor WebPlugin是其中的一个具有频道命名、排序等功能的的插件。 Dream Multimedia Dreambox设备中的BouquetEditor WebPlugin存在跨站脚本漏洞。远程攻击者可利用该漏洞注入任意的Web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Dream Multimedia Dreambox devices via their WebControl component are vulnerable to reflected cross-site scripting, as demonstrated by the "Name des Bouquets" field, or the file parameter to the /file URI. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2017/CVE-2017-15287.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2016-9263 | WordPress 安全漏洞 | |
| CVE-2017-15290 | Mirasys Video Management System 加密问题漏洞 | |
| CVE-2015-6358 | 多款Cisco产品安全漏洞 | |
| CVE-2017-12849 | SilverStripe CMS 安全漏洞 | |
| CVE-2017-15268 | QEMU 安全漏洞 | |
| CVE-2017-15277 | ImageMagick和GraphicsMagick 安全漏洞 | |
| CVE-2017-15278 | TeamPass 跨站脚本漏洞 | |
| CVE-2017-15279 | Umbraco CMS 跨站脚本漏洞 | |
| CVE-2017-15280 | Umbraco CMS 安全漏洞 | |
| CVE-2017-15281 | ImageMagick 缓冲区错误漏洞 | |
| CVE-2017-15284 | OctoberCMS 跨站脚本漏洞 | |
| CVE-2017-15285 | Creative X-Cart 安全漏洞 | |
| CVE-2017-15286 | SQLite 代码问题漏洞 | |
| CVE-2017-12192 | Linux kernel 代码问题漏洞 | |
| CVE-2017-15274 | Linux kernel 安全漏洞 |
No comments yet